PT-2026-33839 · Unknown · Openxiangshan Nemu

Published

2026-04-20

·

Updated

2026-04-21

·

CVE-2026-29646

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions OpenXiangShan NEMU versions prior to 55295c4
Description When running with the RVH (Hypervisor extension) enabled, a VS-mode guest write to the supervisor interrupt-enable CSR sie may be handled incorrectly. This can influence the machine-level interrupt enable state mie, breaking privilege and virtualization isolation. Such a flaw can lead to denial of service or privilege-boundary violation in environments relying on NEMU for correct interrupt virtualization.
Recommendations Update to version 55295c4 or later.

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-29646

Affected Products

Openxiangshan Nemu